5.5

CVSS3.1

CVE-2022-50879 - objtool: Fix SEGFAULT

In the Linux kernel, the following vulnerability has been resolved: objtool: Fix SEGFAULT find_insn() will return NULL in case of failure. Check insn in order to avoid a kernel Oops for NULL pointer dereference.

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:05 p.m.

7.0

CVSS3.1

CVE-2023-54292 - RDMA/irdma: Fix data race on CQP request done

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix data race on CQP request done KCSAN detects a data race on cqp_request->request_done memory location which is accessed locklessly in irdma_handle_cqp_op while being updated in irdma_cqp_ce_handler. Annotate lockl…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

5.5

CVSS3.1

CVE-2023-54185 - btrfs: remove BUG_ON()'s in add_new_free_space()

In the Linux kernel, the following vulnerability has been resolved: btrfs: remove BUG_ON()'s in add_new_free_space() At add_new_free_space() we have these BUG_ON()'s that are there to deal with any failure to add free space to the in memory free space cache. Such failures are mostly -ENOMEM that …

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:51 a.m.

5.5

CVSS3.1

CVE-2022-50888 - remoteproc: qcom: q6v5: Fix potential null-ptr-deref in q6v5_wcss_init_mmio()

In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom: q6v5: Fix potential null-ptr-deref in q6v5_wcss_init_mmio() q6v5_wcss_init_mmio() will call platform_get_resource_byname() that may fail and return NULL. devm_ioremap() will use res->start as input, which may ca…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

0.0

CVE-2022-50826 - ipu3-imgu: Fix NULL pointer dereference in imgu_subdev_set_selection()

In the Linux kernel, the following vulnerability has been resolved: ipu3-imgu: Fix NULL pointer dereference in imgu_subdev_set_selection() Calling v4l2_subdev_get_try_crop() and v4l2_subdev_get_try_compose() with a subdev state of NULL leads to a NULL pointer dereference. This can currently happe…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

7.0

CVSS3.1

CVE-2022-50784 - wifi: iwlwifi: mei: fix potential NULL-ptr deref after clone

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mei: fix potential NULL-ptr deref after clone If cloning the SKB fails, don't try to use it, but rather return as if we should pass it. Coverity CID: 1503456

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

7.0

CVSS3.1

CVE-2023-54269 - SUNRPC: double free xprt_ctxt while still in use

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: double free xprt_ctxt while still in use When an RPC request is deferred, the rq_xprt_ctxt pointer is moved out of the svc_rqst into the svc_deferred_req. When the deferred request is revisited, the pointer is copied into…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:42 p.m.

7.0

CVSS3.1

CVE-2023-54176 - mptcp: stricter state check in mptcp_worker

In the Linux kernel, the following vulnerability has been resolved: mptcp: stricter state check in mptcp_worker As reported by Christoph, the mptcp protocol can run the worker when the relevant msk socket is in an unexpected state: connect() // incoming reset + fastclose // the mptcp worker is s…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

7.0

CVSS3.1

CVE-2023-54193 - net/sched: cls_api: remove block_cb from driver_list before freeing

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: remove block_cb from driver_list before freeing Error handler of tcf_block_bind() frees the whole bo->cb_list on error. However, by that time the flow_block_cb instances are already in the driver list because …

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.

0.0

CVE-2022-50814 - crypto: hisilicon/zip - fix mismatch in get/set sgl_sge_nr

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/zip - fix mismatch in get/set sgl_sge_nr KASAN reported this Bug: [17619.659757] BUG: KASAN: global-out-of-bounds in param_get_int+0x34/0x60 [17619.673193] Read of size 4 at addr fffff01332d7ed00 by task read…

πŸ“… Published: Dec. 30, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:43 p.m.
Total resulsts: 343761
Page 1821 of 34,377
Β« previous page Β» next page
Filters